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JOINT CQMMUNICATIONS-ELECTRONIOS COMMITTEE 
SECURITY AND CRYPTOGRAPHIC PANEL 
REPLACEMENT OF THE PRESENT COMBINED CIPHER MACHINE 

Note by the Secretary 

1. The enclosure, a report of the Joint Security and Crypto- 
graphic Panel Is forwarded to the Joint Coordinating Panel for 
consideration and is circulated to the members of the J/SC Panel 
for information. 



W, R. JOY 

Secretary, Joint Security 
and Cryptographic Panel 
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REPORT BY THE JOINT COMMUNICATIONS-ELECTRONICS COMMITTEE 

to the 

JOINT CHIEFS OF STAFF 
OIL 

REPLACEMENT OF THE PRESENT 00MB TNFD CIPHER MACHINE 

THE PROBLEM 

1. To comment and malce recommendations on the memorandum from 
the British Chiefs of Staff (RDC 1/36, dated 5 December 1949, 

i 

enclosure to JCS 2074/1, dated 6 December 1949) on the replacement 
of the present Combined Cipher Machine ( CCM). 

FACTS BEARINO ON THE PROBLEM AND DISCUSSION 

2. See Enclosure "B" . 

CONCLUSIONS 

3. It Is concluded that: 

Complete Interchange of cryptographic principles Bhould not 
be approved without qualification, but that a limited agreement in 
certain fields should be proposed. 

b, The U.K. should be invited to diBdose the new British 
Cipher Machine to the U.S., as the basis of adaptation to a new 
Combined Cipher Machine which would link together the new British 
Cipher Machine and the appropriate U. S Cipher Machine. 

c, . The U. S should agree that attempts be made to develop a 
7-rotor BCM as one of the possible replacements for the present CCM 
However no definite commitment should be made as to the adaptation of 
the 7-rotor BCM until the U.S. is satisfied with the development. 

d. The British propsal of a 7-rotor ECM should not be 

accepted. 

e. Combined U.S -U.K. communications should continue in the 
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jSEesent COM until an emergency, or until such time as a new com- 
bined cipher machine is available and accepted. Such improvements 
as increasing the number of rotors to a set, frequent supersession 
of rotors and fcey lists, interchangeable cam contours, and any 
other feasible material Improvements should be introduced. 

j£. The U. S. should assure the U.K. that, in the event of an 

emergency before the completion of the new combined cipher 
machine, the U. S. will furnish to the U. K. a limited number of 
U. S. cipher machines to meet immediate urgent needs of highest 
command communications. 

RECOMMENDATIONS 

4. It is recommended that the memorandum in Enclosure "A" be 
forwarded to the Representatives of the British Chiefs of Staff. 
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MEMORANDUM FOR THE REPRESENTATIVES OF THE BRITISH CHIEFS OF STAFF 

1. The U.3. Chiefs of Staff have considered the proposals made ' in 

RDC 1/36 of 5 December 1949 concerning the replacement of the present 

Combined Cipher Machine (CCM). The two requests contained in paragraph 

7 of RDC 1/36 are discussed herein in turn. 

Which cipher mechanism should be employed on a long - 
term basis within tlr •?’ Combined Cipher Machine : 

Should the British Chiefs of Staff care to disclose their new 
cipher machine as the basis of a possible new combined cipher machine, 
the U. S. Chiefs of Staff will be pleased to consider this machine for 
such adaptation of both the U. S and U. K. designs as may be feasible 
to .provide Intercommunication. 

However the U. S. Chiefs of Staff consider that the 7-rotor BCM 
mechanism with appropriate stepping provides adequate long-term security 
for combined communications and therefore recommend that the British 
machine be completed with this in mind, this is desirable in order that 
in the event the U. S. 7-rotor BCM development becomes satisfactory this 
mechanism might be an alternative replacement for the present Combined 

Cipher Machine. 

» * 

b. The interchange of cryptographic principles on a 
reciprocal basis : 

.The U. S. Chiefs of Staff regret that they are still unable to 
accept such a proposal without qualification. However, the U. S. 

Chiefs of Staff recognize that, in certain fields, such interchange may 
be very profitable to both the U. S. and the U.K., and are agreeable 
to malting this the subject of a conference' in Washington. 

2. The U. 3. Chief of Staff are in agreement that the potential 
insecurity of the CCM can be reduced in part by additional rotors in 
the set and by the ultimate addition of Interchangeable tires bearing 
the stepping oontrol notches, and that ever^ effort should be made in 

these directions until the successor machine to the CCM is available 
for combined communications. 

In this connection, in the event of an emergency before the com 
4= 9F SECRE T- -3- Enclosure "A" 
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pletion of the’ new domblned cipher machine, the U. S. Chiefs of Staff 
assure the British Chiefs of Staff that every effort will be made to 
provide the U.K. with a limited number of U- S. cipher machines to 
meet immediate urgent needs of highest command communications. 
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ENCLOSURE H B» 

FACTS BEARING ON THE PROBLEM AND DISCUSSION 

1. The U.K. has, for various reasons, rejected a proposal of the 
U. S. (Enclosure "A” to JCS 2074, dated 18 October 1949) to adopt the 

6- rotor BCM for combined use. 

2. The JCEC has re-examined the problem, particularly centering 
Its deliberations around paragraph 7 of the Appendix to JCS 2074/1 
which raises three new possibilities for combined cipher communica- 
tions, as follows: 

a. The 7-rotor ECM 

b. The 7-rotor BCM 

c. Both the 7-rotor ECM and the 7-rotor BCM at different 
communication levels. 

3. With regard to the proposal made in paragraph 2a above, that 
is, the 7-rotor ECM, there is no such machine now in existence. The 
U. S cannot afford, from an operational and economic viewpoint, to 
consider producing such a machine. To do so would entail a shift 
from the present NCM-CSP 2900 program to which the U.S. is firmly 
committed. In fact, the tJ. S. Navy will commenoe use of the CSP-2900 
as of 1 July 1950; the Army and Air Force will commence using this 
machine as soon thereafter as their produdtion requirements are met. 

4. With regard to the proposal made in paragraph 2b. above, i.e. 
the 7-r0tor BCM, it is probably feasible, from both cryptographic 

and engineering standpoints to produce an adaptor to the NCM-CSP 2900 
machine, which would permit 7-rotor BCM combined communications. 
However, in order to assure combined communications to all U. S. 
commands, it would be necessary for the U. S. to provide a separate 

7- rotor BCM for use in sensitive or semi-sensitive areas because just 
as the U.S. does not in peace time expose the ECM in such areas 
neither should the U. S. expose the CSP-2900. 

^ Q P -SEQnE T 
U.S. EYES ONLY 



-5- 



Enclosure "B" 





5. A 7-rotor BCty would provide vastly more secure combined commu- 
nications than either the COM or the present 5-rotor BCM. The 7-rotor 
BCM should have security comparable to that of the ECM. This point 
cannot bie established definitely until all cryptographic details of 
the 7-rotor BCM have been determined and appropriate security studies 
have been conducted. 

6. With regard to the proposal made in paragraph 2c.. above, l.e. , 
both the 7-rotor ECM and the 7-rotor BCM at different communication 
levels, this proposal must be discarded in view of the facts Btated 

in paragraph 3 above. 

7. a. The security evaluation of the 5-rotor BCM diade in the 
Appendix to JC3 2074/1 is substantially correct, but it implies that 
the evaluation is also applicable to the present ECM. It is certain 
that the application of the proposed British attach to the ECM is 
very much more complex and difficult. 

b. Although the U. 3. security experts agree that the evalua- 
tion is substantially correct with regard to the present 5-rotor BCM, 
it should be noted that the solution is based on the assumption that 
the rotors are physically compromised. Considering the care and ex- 
pense that are taken in produdlng, shipping, and. accounting for 
cryptographic material, the routine acceptance of a presumption that 
the rotors for a cipher machine must always be considered compromised 
appears to be considerably beyond the normal limits of calculated 
risk. Indeed, if it must be assumed that the rotors are always 
compromised, then there is no valid reason for not assuming that the 
key-lists are also always compromised. 

(l) Further, the presumption concerning the 25-letter "crib" 
assumed that the crib is correctly placed in cipher message, 
and all time estimates of the soltulon are based on this 
assumption. As a matter of fact, both the U. S. and U.K., 
use two special encryption techniques, bisection and variable 
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spacing, specifically designed to hinder crib-fitting; 
they are very effective for that purpose. 

£. Increasing the number of rotors in a COM or BCM set from 
10 rotors to 20 rotors would increase the length of time a 
hundred fold. 

d. The introduction of rotors with interchangeable cam 
Contours, and more frequent supersession of rotors and key lists 
In conjunction with an increased number of rotors to a set can 
make the security of the present COM acceptable for a considerable 
period of time (at least five years) 



8. The second part of the U.K.’s proposal, to effect complete 
interchange of cryptographic principles on a reciprocal basis, is 
still considered unacceptable unless qualified. However, certain 
limited intercnange may be profitable to the U.3 particularly In 
the following communication fields: 

a. non-literal 

b. low echelon literal 

o. meteorological 

d. merchant ships 

9. This study has been coordinated with the Armed Forces Security 
Agency Council (AFSA) . 



TOP SECRET 
U.3. EYES ONLY 




Enclosure "B u 



-7 




